Epicpaths Compliance Engine: User Guide

Complete documentation on executing hybrid triage workflows, utilizing the Universal Standards Explorer, and generating compliance deliverables.

Universal Explorer Free Mode
A read-only, unified compliance matrix for cross-referencing WCAG, 508, EN 301 549, and vendor testing alerts.
Authenticated Workspace Paid Subscriptions
Unlocks the interactive triage deck, evidence locker, custom branding, and 1-click deliverable compilers.
Platform Scope & Limitations: The Epic Compliance Engine is a consolidator and reporting tool. It does not actively block bots, alter live server code, or automatically fix websites. Its accuracy relies entirely on the knowledge, manual testing, and remediation execution of the practitioner using it.
Section I: The Universal Standards Explorer (Free Mode) Click to expand ▾

The Universal Standards Explorer is a free, read-only reference tool designed to map fragmented accessibility data into unified requirements.

A. The Search & Query Engine

A custom token scrubbing engine intercepts and translates complex audit queries automatically.

  • Vendor Token Translation: Paste raw automated scanner IDs directly into the search bar. The engine natively recognizes proprietary slugs from Axe-Core (e.g., axe-heading-order) and WAVE.
  • Dynamic Logical Matching: Entering multiple distinct keywords requires all terms to match (AND logic). If numerics are detected, it broadens the net (OR logic) to capture overlapping framework rules.

B. Framework Schemas & Filters

Use the primary dropdown selector to shift the engine's focus between Technical Registries and Macro-Routing views.

  • Technical Registries: Isolate specific criteria by selecting WCAG 2.2, Section 508, European EN 301 549, or WCAG 3.0 (Silver).
  • Macro-Routing: Selecting a global civil law (e.g., ADA Title III, AODA, or the European Accessibility Act) instantly prunes the matrix, displaying only the exact technical standards established as legal safe harbors for that jurisdiction.

C. Anatomy of a Matrix Row

Every generated row is heavily augmented with contextual metadata to assist in rapid remediation.

  • Human Impact Scope Pills: Visual icons indicate the specific impairment domains (Visual, Motor, Cognitive, Auditory, Speech, Photosensitivity) impacted by a failure.
  • Overlap Maps: WCAG criteria explicitly list which specific clauses in EN 301 549 and Section 508 share identical technical requirements.

D. Regulatory Scoping & Exceptions

Expand the "Regulatory Framework Scoping" guide above the matrix for critical testing thresholds.

  • Platform Matrix: Outlines how WCAG applies differently to Web HTML, Downloadable Documents, and Software UIs.
  • Critical Safe Harbors: Explains the 501.1 Web App exemption, the 4.1.1 parsing trap, and strict WCAG Level AAA stroboscopic seizure limits.
Section II: The Authenticated Workspace (Audit Execution) Click to expand ▾

Paid tiers unlock the interactive testing grid. Here is how to execute your manual testing and ingest automated scans.

A. Command Hub & Scan Ingestion

The Command Hub drawer manages your active workspace parameters.

  • Universal Dropzone: Select either Single File or Batch Files mode. Drag and drop raw CSV or JSON exports from supported vendors (e.g., Axe, Lighthouse, Equalize Digital) to instantly populate the matrix.
  • WAF Security Intercepts: The engine automatically sanitizes uploads. Malicious executables or schema-mismatches will trigger automated quarantines or strikes.
  • Domain Protection: Uploading a scan that does not match the active project's bound URL will trigger a mismatch warning, preventing data contamination.

B. Triage Deck & Evidence Locker

Automated scans create grouped DOM occurrences. Manual findings can be logged via the "New Flag" button.

  • The Triage Bar: Every occurrence requires a human decision: Pass, Fixed, or Log Issue.
  • Polymorphic Evidence Locker: Clicking "Log Issue" opens a secure dialog to paste screenshots (Ctrl+V) and log syntax proof. If a rule is later marked as "Fixed," the locker seamlessly pivots to accept Remediation visual proof.

C. Version Time Machine (Historical Delta)

Prove Return on Investment (ROI) by mathematically tracking accessibility debt reduction.

  • When a project phase is locked, it establishes a V1 Baseline.
  • Creating a V2 Recheck generates a blank slate linked to the parent baseline.
  • The Engine automatically compares the new V2 scan against the locked V1 archive to calculate exact defect resolution rates.

D. Real-Time Telemetry & Filters

The matrix dynamically calculates audit progress via a 4-state filter deck.

  • Action Filters: Quickly isolate rows by toggling between All, Flagged, Passed, and Pending (unverified flags).
  • Executive Status Dashboard: Clicking the "Project Status" button in the header launches a modal containing analytical tallies (Fixed, Passed, Unverified Scanner Flags, Manual Defect Counts) to gauge total remaining effort.
Section III: The Team Workspace (Command Center) Click to expand ▾

The Team Hub is the central portal for managing client retainers, analyzing ROI, and downloading formal deliverables.

Tab 1: Project Registry & Settings

  • Scoping DNA: Checking scoping attributes dynamically suppresses or injects requirements into the matrix.
  • Danger Zone: Differentiates between Purging Scanner Noise vs permanently Trashing a project.

Tab 2: Analytics & Reports

  • Deliverable Compilers: Generation of Developer Sprints, Formal Audits, and VPAT-based ACRs.
  • White Paper Mode: Strips branding for clean B2B sub-contractor handoffs.

Tab 3: Vault & File Manager

  • Artifact Archiving: Upload manually signed ACRs or compliance statements strictly for record-keeping.
  • CYA Audit Trails: View immutable JSON logs of every action taken on a project.

Tab 4: Agency Account Manager

  • Global Branding: Establish custom primary/secondary hex colors and agency logos.
  • Institutional Quotas: Monitor realtime server megabyte consumption.

Tab 5: Enterprise Team Manager

Govern your active roster and delegate collaboration seats. (Requires Enterprise Multi-Seat tier).

  • Role-Based Access Control (RBAC): Safely invite practitioners without sharing billing access.
  • Async Revocation: Instantly revoke a team member's access while retaining their audit history.
Section IV: Subscriptions, Roles & Access Governance Click to collapse ▾
Alpha Permissions Contract: These tables define the intended access model. Enforcement is being aligned and tested before beta.

Access within the engine is governed by three intersecting concepts:

  • Tier: Which product features your organization has purchased.
  • Role: What an individual practitioner is authorized to do globally.
  • Assignment: Which specific projects a practitioner works on. (Assignments restrict access for Juniors, but merely identify responsibility for Seniors, who retain tenant-wide access).

A. Subscription Tiers (Feature Availability)

Table comparing feature availability across subscription tiers
Capability Auditor (Solo) Enterprise (Single Seat) Enterprise (Multi-Seat)
Workspace & Reference LibrariesYesYesYes
Supported Scan Ingestion & Manual AssessmentYesYesYes
Informal Outputs (Developer Sprints & Informal Audits)YesYesYes
Formal Outputs (VPAT-based ACR, Accessibility Statements, Historical)NoYesYes
Baseline Preservation & Evidence ProtectionsYesYesYes
Multiple Staff Seats & InvitationsNoNoYes
Assignments & Review WorkflowsNoNoYes

B. Enterprise Role Permissions

Table defining permissions for each enterprise role
Action / Capability Owner / Co-Owner Project Manager Senior Auditor Junior Tester
Access ProjectsAll projects within orgAll projects within orgAll projects within orgAssigned projects
Work on Open Assessments & Import ScansYesYesYesAssigned projects
Assign WorkYesYesYesNo
Submit Assigned Work for ReviewYesYesYesYes
Review & Supersede DeterminationsYesYesYesCannot supersede
Lock Assessment BaselinesYesYesYesNo
Generate Formal Reports (VPAT, Statements)YesYesYesNo
Purge Eligible Data / Delete Open EvidenceYesYesYesOwn unsubmitted only
Delete ProjectsYesYesNoNo
Manage Team Seats & BrandingYesYes (No Co-Owner grants)NoNo
Manage Billing & SubscriptionsFull org adminBlockedBlockedBlocked
Governing Rule: Permissions depend on your subscription, seat role, project access, and the project’s current state. No role bypasses locked-baseline or retained-evidence protections.